Vulnerabilities
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2001-06-27 | CVE-2001-0246 | Unspecified vulnerability in Microsoft Internet Explorer Internet Explorer 5.5 and earlier does not properly verify the domain of a frame within a browser window, which allows remote web site operators to read certain files on the client by sending information from a local frame to a frame in a different domain, aka a variant of the "Frame Domain Verification" vulnerability. | 5.0 |
2001-06-27 | CVE-2001-0245 | Remote Security vulnerability in Microsoft Index Server and Indexing Service Microsoft Index Server 2.0 in Windows NT 4.0, and Indexing Service in Windows 2000, allows remote attackers to read server-side include files via a malformed search request, aka a new variant of the "Malformed Hit-Highlighting" vulnerability. | 5.0 |
2001-06-27 | CVE-2001-0244 | Buffer Overflow vulnerability in Microsoft Index Server 2.0 Buffer overflow in Microsoft Index Server 2.0 allows remote attackers to execute arbitrary commands via a long search parameter. | 7.5 |
2001-06-27 | CVE-2001-0243 | Unspecified vulnerability in Microsoft Windows Media Player 6.4/7 Windows Media Player 7 and earlier stores Internet shortcuts in a user's Temporary Files folder with a fixed filename instead of in the Internet Explorer cache, which causes the HTML in those shortcuts to run in the Local Computer Zone instead of the Internet Zone, which allows remote attackers to read certain files. | 5.0 |
2001-06-27 | CVE-2001-0242 | Buffer Overflow vulnerability in Microsoft Windows Media Player 6.3/6.4/7 Buffer overflows in Microsoft Windows Media Player 7 and earlier allow remote attackers to execute arbitrary commands via (1) a long version tag in an .ASX file, or (2) a long banner tag, a variant of the ".ASX Buffer Overrun" vulnerability as discussed in MS:MS00-090. | 7.5 |
2001-06-27 | CVE-2001-0241 | Buffer Overflow vulnerability in Microsoft IIS 5.0 .printer ISAPI Extension Buffer overflow in Internet Printing ISAPI extension in Windows 2000 allows remote attackers to gain root privileges via a long print request that is passed to the extension through IIS 5.0. | 10.0 |
2001-06-27 | CVE-2001-0240 | Unspecified vulnerability in Microsoft Word Microsoft Word before Word 2002 allows attackers to automatically execute macros without warning the user via a Rich Text Format (RTF) document that links to a template with the embedded macro. | 4.6 |
2001-06-27 | CVE-2001-0237 | Unspecified vulnerability in Microsoft Windows 2000 Memory leak in Microsoft 2000 domain controller allows remote attackers to cause a denial of service by repeatedly connecting to the Kerberos service and then disconnecting without sending any data. | 5.0 |
2001-06-26 | CVE-2001-1324 | Unspecified vulnerability in Paul Jarc Idtools 20010531/20010608 cvmlogin and statfile in Paul Jarc idtools before 2001.06.27 do not properly check the return value of a call to the pathexec_env function, which could cause the setstate utility to setuid to the UID environment variable and allow local users to gain privileges. | 4.6 |
2001-06-26 | CVE-2001-1083 | Denial Of Service vulnerability in Icecast 1.0.0/1.3.7/1.3.8Beta2 Icecast 1.3.7, and other versions before 1.3.11 with HTTP server file streaming support enabled allows remote attackers to cause a denial of service (crash) via a URL that ends in . | 5.0 |